ForgeApply
Try it free

ForgeApply · Job listing

ICAM Systems Engineer & Manager

GDIT

USA FL MacDill AFB, US$113k – $132konsite

See all 439 open roles at GDIT

Tailor your resume for this GDIT job in about a minute.

ForgeApply tailors your resume and cover letter to this exact posting, then hands you a ready-to-submit application for GDIT's site. Free trial, no card required.

About this role

Type of Requisition: Regular

Clearance Level Must Currently Possess: Top Secret/SCI

Clearance Level Must Be Able to Obtain: Top Secret/SCI

Public Trust/Other Required: None

Job Family: IT Infrastructure and Operations

Job Qualifications: Skills: Active Directory Management, Identity Management (IdM), Multi-Factor Authentication (MFA), Zero Trust Certifications: None Experience: 5 + years of related experience US Citizenship Required: Yes

Job Description: Serves as a senior operational leader and Team Lead overseeing enterprise Domain Services and Identity, Credential, and Access Management (ICAM) for the US BICES/US BICES X mission. Provides hand-on leadership across Active Directory (AD), DNS/DHPC, group policy infrastructure, and core access control pillars within a mission critical, 24/7 globally distributed environment. Acts as an operational integrator among Domain Infrastructure, Cybersecurity, Operations, and Government partners to drive identity governance and transition legacy systems toward full Zero Trust compliance. Role requires proactive operational support, emergency coordination, and a presence to resolve critical identity or authentication support when outages or emergency situations arise.

Key Responsibilities Domain Services & ICAM Operations: • Direct operations, engineering, and security hardening of enterprise Active Directory Domain Services (AD DS), core network infrastructure (DNS/DHCP), and Group Policy Architectures. • Spearhead Identity lifecycle management, business continuity/disaster recover planning, and continuous compliance auditing to ensure system resilience. •  Drive the modernization of legacy directory structures into a Zero Trust framework, implementing Tiered Administration and secure micro segmentation boundary integrations. • Oversee global authentication protocol lifecycles, leading deprecation of insecure legacy protocols with integration to replace with Multi-Factor Authentication and continuous adaptive access controls. • Manage user, administrative, and service accounts to adhere to security requirements and industry best practices. • Provides direction and drives collaborative team troubleshooting during directory related incidents, authentication outages, and emergency response actives affecting mission services, including after-house support. • Ensure the administrative and technical workforce adheres to identity governance processes, Attribute-Based Access Control (ABAC) baselines, and program requirement guidance. • Guides operational oversight for project plans, vendors, communication to stakeholders, and issue escalation for issue mitigation as related to technologies and responsibilities. • Develops, documents, implements, and reviews technical training and supporting operational procedures and processes for all assigned position task sets, providing oversight of robust onboarding training process. • Participates in special projects as required.

Cybersecurity & Zero Trust Governance Compliance • Enforce infrastructure and directory compliance with NIST SP 800-207 Zero Trust Architecture standards. • Enforce compliance with RMF, DISA STIGs, and Cybersecurity directives. • Partner with security teams on continuous monitoring, audit readiness, and rapid vulnerability remediation. • Manages a small team of admins and engineers

Required Qualifications: • Must possess and maintain a TS/SCI Security Clearance. • 5 Years supporting enterprise operations in mission-critical DOD/IC environments. • 5+ Years leadership experience in identity management, Active Directory, or core domain services operations. • Experience supporting globally distributed classified environments with DoD, IC, or coalition networks. • Technical proficiency: Windows Server Administration, Active Directory Domain Services, Group Policy Management, DNSSEC, DHCP network access controls, and identity architecture. • DOW 8140/8570 Compliance: IAT Level Baseline Certification • CISSP, CASP+/SecurityX, CCNP, CySA+, Security+

• Industry Certifications: • GCWN (GIAC Certified Windows Security Administrator • Microsoft Identity Certifications

Preferred Qualifications: • PMP, ITIL V4, or Agile. • Experience with US BICES/BICES X, Privileged Access management (PAM) tools, and automation.

Operational Focus Areas • Daily Active Directory & Group Policy Administration • Account Management and System Permissions • Enterprise DNS & DHCP Network Scope Management • Team Leadership, Task Delegation, & Incident Escalation • Systems Hardening, Windows Security Log Monitoring, & STIG Compliance

The likely salary range for this position is $112,840 - $132,250. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

Scheduled Weekly Hours: 40

Travel Required: Less than 10%

T elecommuting Options: Onsite

Work Location: USA FL MacDill AFB

Additional Work Locations:

Total Rewards at GDIT: Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.

Tailor your resume for this GDIT role before you apply.

Tailor my resume for this job

Similar jobs

Free ATS checker · How to Tailor Your Resume to a Job Description (Step by Step)